CN104011730A - 外部代码安全机制 - Google Patents
外部代码安全机制 Download PDFInfo
- Publication number
- CN104011730A CN104011730A CN201180076059.3A CN201180076059A CN104011730A CN 104011730 A CN104011730 A CN 104011730A CN 201180076059 A CN201180076059 A CN 201180076059A CN 104011730 A CN104011730 A CN 104011730A
- Authority
- CN
- China
- Prior art keywords
- naf
- server
- key
- external code
- specific
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Pending
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/04—Key management, e.g. using generic bootstrapping architecture [GBA]
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/30—Authentication, i.e. establishing the identity or authorisation of security principals
- G06F21/31—User authentication
- G06F21/33—User authentication using certificates
-
- G—PHYSICS
- G06—COMPUTING OR CALCULATING; COUNTING
- G06F—ELECTRIC DIGITAL DATA PROCESSING
- G06F21/00—Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
- G06F21/30—Authentication, i.e. establishing the identity or authorisation of security principals
- G06F21/31—User authentication
- G06F21/34—User authentication involving the use of external additional devices, e.g. dongles or smart cards
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/06—Network architectures or network communication protocols for network security for supporting key management in a packet data network
- H04L63/061—Network architectures or network communication protocols for network security for supporting key management in a packet data network for key exchange, e.g. in peer-to-peer networks
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0823—Network architectures or network communication protocols for network security for authentication of entities using certificates
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/16—Implementing security features at a particular protocol layer
- H04L63/166—Implementing security features at a particular protocol layer at the transport layer
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/16—Implementing security features at a particular protocol layer
- H04L63/168—Implementing security features at a particular protocol layer above the transport layer
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
- H04L9/0861—Generation of secret information including derivation or calculation of cryptographic keys or passwords
- H04L9/0869—Generation of secret information including derivation or calculation of cryptographic keys or passwords involving random numbers or seeds
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/32—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
- H04L9/3234—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving additional secure or trusted devices, e.g. TPM, smartcard, USB or software token
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/04—Key management, e.g. using generic bootstrapping architecture [GBA]
- H04W12/043—Key management, e.g. using generic bootstrapping architecture [GBA] using a trusted network node as an anchor
- H04W12/0431—Key distribution or pre-distribution; Key agreement
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/06—Authentication
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L2463/00—Additional details relating to network architectures or network communication protocols for network security covered by H04L63/00
- H04L2463/061—Additional details relating to network architectures or network communication protocols for network security covered by H04L63/00 applying further key derivation, e.g. deriving traffic keys from a pair-wise master key
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Computer Hardware Design (AREA)
- General Engineering & Computer Science (AREA)
- Theoretical Computer Science (AREA)
- Computing Systems (AREA)
- General Physics & Mathematics (AREA)
- Physics & Mathematics (AREA)
- Software Systems (AREA)
- Storage Device Security (AREA)
- Stored Programmes (AREA)
- Mobile Radio Communication Systems (AREA)
- Information Transfer Between Computers (AREA)
- Telephonic Communication Services (AREA)
- Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)
Applications Claiming Priority (1)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| PCT/FI2011/050953 WO2013064716A1 (en) | 2011-10-31 | 2011-10-31 | Security mechanism for external code |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| CN104011730A true CN104011730A (zh) | 2014-08-27 |
Family
ID=48191420
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| CN201180076059.3A Pending CN104011730A (zh) | 2011-10-31 | 2011-10-31 | 外部代码安全机制 |
Country Status (18)
| Country | Link |
|---|---|
| US (1) | US20150163669A1 (https=) |
| EP (1) | EP2774068A4 (https=) |
| JP (1) | JP2015501613A (https=) |
| KR (1) | KR20140095523A (https=) |
| CN (1) | CN104011730A (https=) |
| AP (1) | AP3955A (https=) |
| AU (1) | AU2011380272A1 (https=) |
| BR (1) | BR112014010472A2 (https=) |
| CA (1) | CA2853867A1 (https=) |
| IL (1) | IL232374A0 (https=) |
| IN (1) | IN2014CN03915A (https=) |
| MX (1) | MX2014005223A (https=) |
| PH (1) | PH12014500964A1 (https=) |
| RU (1) | RU2582863C2 (https=) |
| SG (1) | SG11201401950PA (https=) |
| UA (1) | UA108957C2 (https=) |
| WO (1) | WO2013064716A1 (https=) |
| ZA (1) | ZA201403900B (https=) |
Cited By (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN113015159A (zh) * | 2019-12-03 | 2021-06-22 | 中国移动通信有限公司研究院 | 初始安全配置方法、安全模块及终端 |
Families Citing this family (14)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| WO2014067543A1 (en) * | 2012-10-29 | 2014-05-08 | Telefonaktiebolaget L M Ericsson (Publ) | Method and apparatus for securing a connection in a communications network |
| US9253185B2 (en) * | 2012-12-12 | 2016-02-02 | Nokia Technologies Oy | Cloud centric application trust validation |
| CN104348801B (zh) * | 2013-07-31 | 2018-05-04 | 华为技术有限公司 | 认证方法、生成信任状的方法及相关装置 |
| WO2015057116A1 (en) * | 2013-10-15 | 2015-04-23 | Telefonaktiebolaget L M Ericsson (Publ) | Establishing a secure connection between a master device and a slave device |
| CN105814834B (zh) | 2013-12-20 | 2019-12-20 | 诺基亚技术有限公司 | 用于公共云应用的基于推送的信任模型 |
| US9736686B2 (en) * | 2015-01-19 | 2017-08-15 | Telefonaktiebolaget Lm Ericsson (Publ) | Methods and apparatus for direct communication key establishment |
| CN106487501B (zh) * | 2015-08-27 | 2020-12-08 | 华为技术有限公司 | 密钥分发和接收方法、密钥管理中心、第一和第二网元 |
| US10129235B2 (en) | 2015-10-16 | 2018-11-13 | Qualcomm Incorporated | Key hierarchy for network slicing |
| CN108702615B (zh) * | 2016-02-12 | 2022-08-05 | 瑞典爱立信有限公司 | 保护接口以及用于建立安全通信链路的过程 |
| EP3718330B1 (en) * | 2017-11-29 | 2024-09-25 | Telefonaktiebolaget LM Ericsson (publ) | Session key establishment |
| FR3077175A1 (fr) * | 2018-01-19 | 2019-07-26 | Orange | Technique de determination d'une cle destinee a securiser une communication entre un equipement utilisateur et un serveur applicatif |
| CN110831002B (zh) * | 2018-08-10 | 2021-12-03 | 华为技术有限公司 | 一种密钥推演的方法、装置及计算存储介质 |
| US20220086632A1 (en) * | 2019-01-14 | 2022-03-17 | Telefonaktiebolaget Lm Ericsson (Publ) | Method and apparatus for security |
| US12500744B2 (en) * | 2021-09-17 | 2025-12-16 | Qualcomm Incorporated | Securing application communication |
Citations (2)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN101160779A (zh) * | 2005-04-18 | 2008-04-09 | 朗迅科技公司 | 提供新鲜会话密钥 |
| WO2010114475A2 (en) * | 2009-04-01 | 2010-10-07 | Telefonaktiebolaget L M Ericsson (Publ) | Security key management in ims-based multimedia broadcast and multicast services (mbms) |
Family Cites Families (10)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN100379315C (zh) * | 2005-06-21 | 2008-04-02 | 华为技术有限公司 | 对用户终端进行鉴权的方法 |
| CN1929370A (zh) * | 2005-09-05 | 2007-03-14 | 华为技术有限公司 | 用户接入认证代理时确定认证使用的密钥的方法及系统 |
| US20070101122A1 (en) * | 2005-09-23 | 2007-05-03 | Yile Guo | Method and apparatus for securely generating application session keys |
| US20070086590A1 (en) * | 2005-10-13 | 2007-04-19 | Rolf Blom | Method and apparatus for establishing a security association |
| US8522025B2 (en) * | 2006-03-28 | 2013-08-27 | Nokia Corporation | Authenticating an application |
| CN103001940A (zh) * | 2007-10-05 | 2013-03-27 | 交互数字技术公司 | 由wtru使用的用于建立安全本地密钥的方法 |
| WO2009070075A1 (en) * | 2007-11-30 | 2009-06-04 | Telefonaktiebolaget Lm Ericsson (Publ) | Key management for secure communication |
| EP2399376A1 (en) * | 2009-02-18 | 2011-12-28 | Telefonaktiebolaget L M Ericsson (publ) | User authentication |
| RU101231U1 (ru) * | 2010-03-02 | 2011-01-10 | Закрытое акционерное общество "Лаборатория Касперского" | Система управления безопасностью мобильного вычислительного устройства |
| EP2695410B1 (en) * | 2011-04-01 | 2017-04-19 | Telefonaktiebolaget LM Ericsson (publ) | Methods and apparatuses for avoiding damage in network attacks |
-
2011
- 2011-10-31 MX MX2014005223A patent/MX2014005223A/es not_active Application Discontinuation
- 2011-10-31 PH PH1/2014/500964A patent/PH12014500964A1/en unknown
- 2011-10-31 IN IN3915CHN2014 patent/IN2014CN03915A/en unknown
- 2011-10-31 SG SG11201401950PA patent/SG11201401950PA/en unknown
- 2011-10-31 EP EP11875098.3A patent/EP2774068A4/en not_active Withdrawn
- 2011-10-31 CN CN201180076059.3A patent/CN104011730A/zh active Pending
- 2011-10-31 AP AP2014007624A patent/AP3955A/en active
- 2011-10-31 UA UAA201405037A patent/UA108957C2/ru unknown
- 2011-10-31 KR KR1020147014546A patent/KR20140095523A/ko not_active Ceased
- 2011-10-31 RU RU2014118918/08A patent/RU2582863C2/ru not_active IP Right Cessation
- 2011-10-31 AU AU2011380272A patent/AU2011380272A1/en not_active Abandoned
- 2011-10-31 WO PCT/FI2011/050953 patent/WO2013064716A1/en not_active Ceased
- 2011-10-31 CA CA2853867A patent/CA2853867A1/en not_active Abandoned
- 2011-10-31 JP JP2014539369A patent/JP2015501613A/ja active Pending
- 2011-10-31 BR BR112014010472A patent/BR112014010472A2/pt not_active IP Right Cessation
- 2011-10-31 US US14/354,904 patent/US20150163669A1/en not_active Abandoned
-
2014
- 2014-04-30 IL IL232374A patent/IL232374A0/en unknown
- 2014-05-28 ZA ZA2014/03900A patent/ZA201403900B/en unknown
Patent Citations (2)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN101160779A (zh) * | 2005-04-18 | 2008-04-09 | 朗迅科技公司 | 提供新鲜会话密钥 |
| WO2010114475A2 (en) * | 2009-04-01 | 2010-10-07 | Telefonaktiebolaget L M Ericsson (Publ) | Security key management in ims-based multimedia broadcast and multicast services (mbms) |
Non-Patent Citations (1)
| Title |
|---|
| ERICSSON,ST-ERICSSON: "《SA WG3 Temporary Document》", 15 April 2011 * |
Cited By (2)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN113015159A (zh) * | 2019-12-03 | 2021-06-22 | 中国移动通信有限公司研究院 | 初始安全配置方法、安全模块及终端 |
| CN113015159B (zh) * | 2019-12-03 | 2023-05-09 | 中国移动通信有限公司研究院 | 初始安全配置方法、安全模块及终端 |
Also Published As
| Publication number | Publication date |
|---|---|
| AU2011380272A1 (en) | 2014-05-22 |
| MX2014005223A (es) | 2014-09-01 |
| EP2774068A4 (en) | 2015-08-05 |
| US20150163669A1 (en) | 2015-06-11 |
| WO2013064716A1 (en) | 2013-05-10 |
| BR112014010472A2 (pt) | 2017-04-18 |
| AP2014007624A0 (en) | 2014-05-31 |
| EP2774068A1 (en) | 2014-09-10 |
| SG11201401950PA (en) | 2014-09-26 |
| RU2582863C2 (ru) | 2016-04-27 |
| IL232374A0 (en) | 2014-06-30 |
| RU2014118918A (ru) | 2015-12-10 |
| JP2015501613A (ja) | 2015-01-15 |
| KR20140095523A (ko) | 2014-08-01 |
| IN2014CN03915A (https=) | 2015-10-16 |
| AP3955A (en) | 2016-12-22 |
| UA108957C2 (uk) | 2015-06-25 |
| CA2853867A1 (en) | 2013-05-10 |
| PH12014500964A1 (en) | 2014-06-30 |
| ZA201403900B (en) | 2017-05-31 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| CN104011730A (zh) | 外部代码安全机制 | |
| US10958448B2 (en) | User authentication with self-signed certificate and identity verification and migration | |
| CN106533665B (zh) | 用于存储网站私钥明文的方法、系统和装置 | |
| CN111343170B (zh) | 电子签约方法及系统 | |
| CN103828291B (zh) | 提供应用服务的方法 | |
| CN111327583A (zh) | 一种身份认证方法、智能设备及认证服务器 | |
| US11570620B2 (en) | Network profile anti-spoofing on wireless gateways | |
| CN116112172B (zh) | Android客户端gRPC接口安全校验的方法和装置 | |
| CN103679000A (zh) | 用于远程删除关键信息的设备和方法 | |
| US20240106816A1 (en) | Secure endpoint authentication credential control | |
| CN102404337A (zh) | 数据加密方法和装置 | |
| CN119483924A (zh) | 一种融合量子的协议通信方法、装置、设备和存储介质 | |
| CN117062073A (zh) | 安全认证方法、装置、计算机设备和存储介质 | |
| CN111431873A (zh) | 一种信息上报的方法、系统、设备以及介质 | |
| CN113591153A (zh) | 一种数据处理方法、装置、设备及存储介质 | |
| CN119520127B (zh) | 一种多因素认证方法、装置、设备及存储介质 | |
| KR101046102B1 (ko) | 악성 코드 처리 방법 및 이를 위한 장치 및 시스템 | |
| CN116707852A (zh) | 网络应用的安全认证方法、装置、计算机及可读存储介质 | |
| CN108684034A (zh) | 数据传输方法及装置 | |
| de Sá | Digital Receipts for Local Transactions in Commercial Spaces |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| C06 | Publication | ||
| PB01 | Publication | ||
| C10 | Entry into substantive examination | ||
| SE01 | Entry into force of request for substantive examination | ||
| C41 | Transfer of patent application or patent right or utility model | ||
| TA01 | Transfer of patent application right |
Effective date of registration: 20160112 Address after: Espoo, Finland Applicant after: Technology Co., Ltd. of Nokia Address before: Espoo, Finland Applicant before: Nokia Oyj |
|
| AD01 | Patent right deemed abandoned | ||
| AD01 | Patent right deemed abandoned |
Effective date of abandoning: 20171117 |